RHSA-2025:17570MediumCVSS 7.3
Red Hat Security Advisory: kernel security update
🔗 CVE IDs covered (8)
📋 Description
CVE-2022-49985 — kernel: bpf: Don't use tnum_range on array range checking for poke descriptors CVE-2022-50087 — kernel: firmware: arm_scpi: Ensure scpi_info is not assigned if the probe fails CVE-2025-37914 — kernel: net_sched: ets: Fix double list add in class with netem as child qdisc CVE-2025-38200 — kernel: i40e: fix MMIO write access to an invalid page in i40e_clear_hw CVE-2025-38211 — kernel: RDMA/iwcm: Fix use-after-free of work objects after cm_id destruction CVE-2025-38449 — kernel: drm/gem: Acquire references on GEM handles for framebuffers CVE-2025-38498 — kernel: do_change_type(): refuse to operate on unmounted/not ours mounts CVE-2025-38527 — kernel: smb: client: fix use-after-free in cifs_oplock_break
🔗 References (11)
- selfhttps://access.redhat.com/errata/RHSA-2025:17570
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2367500
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2373539
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2373540
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2376392
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2376406
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2383519
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2384422
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2388928
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_17570.json